Threat of the month, September 2015


Zero day

What is it?

A trove of zero-day exploits has surfaced after the compromise of the infamous “Hacking Team.” Researchers have uncovered working exploits for Adobe Flash, Microsoft Windows and Internet Explorer. Recent discoveries found within the data stolen from “Hacking Team” include: OpenType Font, Adobe Type Manager, and Adobe Flash, Microsoft Internet Explorer.

How does it work?

Since zero-day exploits target vulnerabilities in software without existing patches, they are often secretly held by attackers and used in targeted attacks.

Should I be worried?

Many Adobe flash exploits have already found their way into known exploit toolkits. Therefore, this is a much larger-scale threat and makes exploitation far more likely. 

How can I prevent it?

Patch now. Adobe and Microsoft have issued patches for many of the exploits found within the leaked documents. 

– John Kuhn, senior security threat researcher, IBM Security

Get daily email updates

SC Media's daily must-read of the most current and pressing daily news

By clicking the Subscribe button below, you agree to SC Media Terms and Conditions and Privacy Policy.